CVE-2007-5220

SQL injection vulnerability in catalog.asp in ASP Product Catalog allows remote attackers to execute arbitrary SQL commands via the cid parameter and possibly other parameters.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:asp_product_catalog:asp_product_catalog:1.0:*:*:*:*:*:*:*

Information

Published : 2007-10-04 17:17

Updated : 2018-10-15 14:41


NVD link : CVE-2007-5220

Mitre link : CVE-2007-5220


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Advertisement

dedicated server usa

Products Affected

asp_product_catalog

  • asp_product_catalog